7.5
CVSSv2

CVE-1999-1018

Published: 27/07/1999 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

IPChains in Linux kernels 2.2.10 and previous versions does not reassemble IP fragments before checking the header information, which allows a remote malicious user to bypass the filtering rules using several fragments with 0 offsets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

linux linux kernel 2.2.0

Exploits

/* source: wwwsecurityfocuscom/bid/376/info Linux kernel 2033 is vulnerable to a denial of service attack related to overlapping IP fragments The bug is not in the handling of them itself, but the action taken when an oversized packet is recieved A printk function is called containing a variable without any sort of wrapping or protect ...